Blog Registrarse Manuales Programas Glosario

Regresar   Foro de InfoSpyware » Spyware - Adware - Hijackers - Malwares » Temas Solucionados
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Temas Solucionados Casos de HijackThis y Malwares resueltos.
(Solo lectura)

Respuesta
 
Enviar a: Herramientas
  post #1  
Antiguo 24/12/09, 14:43:34
Usuario
 
Registrado: dic 2009
Ubicación: Sevilla
Mensajes: 5
Virus paginas publicidad. (Solucionado)

Ante nada gracias por las molestias.
He leido un mensaje del mismo problema que tengo de que cuando abro el internet, ya sea con el explorer o con el mozilla, se me abre paginas de publicidad solas. Segui el tutorial que dejaron para la persona que lo tenia pero no ha surgido efecto. No se si el archivo que ponen que copiara es el que adjunto luego pero lo pongo por si acaso. Una vez que vuelvo a encender el ordenador siguen saliendo las paginas. Cuando sigo los pasos del Look2Me-Destroyer antes de uno de los pasos sale un error que no se menciona en el foro.
Ruego que me ayuden. No tengo mucha idea de estas cosas. Muchas gracias.
Responder Con Cita
InfoSpyware

  post #2  
Antiguo 24/12/09, 14:44:43
Avatar de Rollinguit
Colaborador
 
Registrado: sep 2009
Ubicación: Argentina
Mensajes: 1.790
Re: Virus paginas publicidad

Hola arzuur

Una consulta antes de empezar a ayudarte...

Qué herramientas utilizaste para la desinfección??

Última edición por Rollinguit fecha: 24/12/09 a las 14:48:36.
Responder Con Cita
  post #3  
Antiguo 24/12/09, 14:50:15
Usuario
 
Registrado: dic 2009
Ubicación: Sevilla
Mensajes: 5
Re: Virus paginas publicidad

El tutorial decia que descargara el Look2Me-Destroyer y segui los pasos que decia
Responder Con Cita
  post #4  
Antiguo 24/12/09, 14:51:00
Avatar de Rollinguit
Colaborador
 
Registrado: sep 2009
Ubicación: Argentina
Mensajes: 1.790
Re: Virus paginas publicidad

mmm...

Bien realiza lo siguiente por favor:
Si utilizas Spybot Search & Destroy desactivas el Tea Timer
1º Paso
Descarga, instala y/o actualiza:

---------------------------------------------------------------------------------------------------------------
2º Paso

---------------------------------------------------------------------------------------------------------------
3º Paso
En Modo a prueba de fallos, ejecutar:
Lop S & D
Cita:
Haz doble clic en LopSD.exe
Elige el idioma escribiendo la letra correspondiente y pulsa en Enter
Haz clic en "Aceptar (Ok)" en la ventana informativa
Pinchas 2 para elegir la opción (Fix + Hosts)" y a continuación pulsa en Enter
Espera hasta el final de la exploración
Se generará Un informe C:lopR.txtlog , pega el contenido del mismo en tu próxima respuesta
---------------------------------------------------------------------------------------------------------------
Malwarebytes.
Hacé un "escaneo completo". Una vez finalizado, si detecta algo eliges " Mostrar Resultados " y " Quitar lo Seleccionado ".
Si te pide reiniciar, lo haces.
---------------------------------------------------------------------------------------------------------------
Ccleaner usando sus opciones "Limpiador" para borrar cookies,
temporales de Internet y todos los archivos que este te muestre como obsoletos
, y luego usa su opción "Registro" para limpiar todo el Registro de Windows haciendo Copia de Seguridad.
---------------------------------------------------------------------------------------------------------------

4º Paso

"Iniciar en Modo Normal" y realizar un análisis completo con Panda ActiveScan 2.0

Cita:
En tu proxima respuesta pega los reportes:
Malwarebytes (pestaña "Registros")
Panda ActiveScan 2.0
Lop S&D
Contanos como te fue...
Saludos!
Responder Con Cita
  post #5  
Antiguo 25/12/09, 07:25:07
Usuario
 
Registrado: dic 2009
Ubicación: Sevilla
Mensajes: 5
Re: Virus paginas publicidad

Pego aqui lo que me dijo el programa Malwarebytes'AntiMalware que copiara:

Malwarebytes' Anti-Malware 1.42
Versión de la Base de Datos: 3427
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

25/12/2009 13:24:38
mbam-log-2009-12-25 (13-24-38).txt

Tipo de examen : Examen Completo (C:\|D:\|)
Objetos examinados: 166625
Tiempo transcurrido: 24 minute(s), 35 second(s)

Procesos en Memoria Infectados: 2
Módulos en Memoria Infectados: 10
Claves del Registro Infectadas: 66
Valores del Registro Infectados: 4
Elementos de Datos del Registro Infectados: 0
Carpetas Infectadas: 30
Ficheros Infectados: 81

Procesos en Memoria Infectados:
C:\Documents and Settings\All Users\Datos de programa\QuestService\questservice111.exe (Adware.DoubleD) -> Unloaded process successfully.
C:\Archivos de programa\QuestService\questservice.exe (Adware.DoubleD) -> Unloaded process successfully.

Módulos en Memoria Infectados:
C:\Archivos de programa\Web Search Operator\4.2.0.2150\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\WSOCommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\components\WSOFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\ACECommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\components\ACEFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\CPACommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\components\CPAFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\QuestService\questservice.dll (Adware.DoubleD) -> Delete on reboot.

Claves del Registro Infectadas:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{99esp9c2-4fed-15cf-aae5-62cb5f2x4512} (Generic.Bot.H) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.cmw (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{f5b8c69c-9b45-4a6a-9380-df225c546ae7} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{629cd6c2-e4c5-4554-aeb8-12e4e2cd40ff} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b72681c0-a222-4b21-a0e2-53a5a5ca3d41} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{b72681c0-a222-4b21-a0e2-53a5a5ca3d41} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{b72681c0-a222-4b21-a0e2-53a5a5ca3d41} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{b72681c0-a222-4b21-a0e2-53a5a5ca3d41} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.cmw.1 (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funexplorer (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{ac5ab953-ed25-4f9c-87f0-b086b0178ffa} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6160f76a-1992-4b17-a32d-0c706d159105} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{42c7c39f-3128-4a17-bdb7-91c46032b5b9} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{42c7c39f-3128-4a17-bdb7-91c46032b5b9} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{42c7c39f-3128-4a17-bdb7-91c46032b5b9} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{42c7c39f-3128-4a17-bdb7-91c46032b5b9} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funexplorer.1 (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funredirector (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{883dfc00-8a21-411d-956c-73a4e4b7d16f} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{480098c6-f6ad-4c61-9b5c-2bae228a34d1} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{eb4a577d-bcad-4b1c-8af2-9a74b8dd3431} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{eb4a577d-bcad-4b1c-8af2-9a74b8dd3431} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{eb4a577d-bcad-4b1c-8af2-9a74b8dd3431} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{eb4a577d-bcad-4b1c-8af2-9a74b8dd3431} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.funredirector.1 (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.tcp (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{2a743834-05f4-4ed4-8a1c-41332b10ac0c} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1081d532-7de4-40bd-b912-388fa6b27c78} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cac89ff9-34a9-4431-8cfe-292a47f843bc} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars \{cac89ff9-34a9-4431-8cfe-292a47f843bc} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{cac89ff9-34a9-4431-8cfe-292a47f843bc} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{cac89ff9-34a9-4431-8cfe-292a47f843bc} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{cac89ff9-34a9-4431-8cfe-292a47f843bc} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\explorerbar.tcp.1 (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1d74e9dd-8987-448b-b2cb-67fff2b8a932} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{565dd573-549e-4da9-8cd7-6ae3df25339a} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{877f3eab-4462-44df-8475-6064eafd7fbf} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{1d74e9dd-8987-448b-b2cb-67fff2b8a932} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{1d74e9dd-8987-448b-b2cb-67fff2b8a932} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{1d74e9dd-8987-448b-b2cb-67fff2b8a932} (Adware.Agent) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3de88beb-f271-484a-ba71-01d30f439f0c} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{50ad41d2-b1f0-47cc-9ea7-395355eaeebd} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8ceb185e-81a5-46d3-bc20-c555d605afbd} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a72522ba-9ff3-4c83-abc6-9b476728a396} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c5762628-ae15-4ca6-96c4-b00dd17f3419} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d062e03e-65ca-49e4-9b15-31938ba98922} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Explorer\Bars \{b72681c0-a222-4b21-a0e2-53a5a5ca3d411} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{d45817b8-3ead-4d1d-8fca-ec63a8e35de2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{99esp9c2-4fed-15cf-aae5-62cb5f2x4512} (Backdoor.IRCBot) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Settings\{d45817b8-3ead-4d1d-8fca-ec63a8e35de2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\{D45817B8-3EAD-4d1d-8FCA-EC63A8E35DE2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Web Search Operator (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\AppDataLow\SOFTWARE\In ternet Today (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Automated Content Enhancer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Customized Platform Advancer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Uninstall\QuestService (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\QuestService (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Web Search Operator (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\QuestService Service (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Automated Content Enhancer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Customized Platform Advancer (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\OOO (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Media Access Startup (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\OOO (Rogue.LivePlayer) -> Quarantined and deleted successfully.

Valores del Registro Infectados:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{d45817b8-3ead-4d1d-8fca-ec63a8e35de2} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extens ions\{8141440e-08f0-4339-9959-5c31c6a69f23} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extens ions\{e63605fc-d583-4c81-867f-9457bdb3ea1b} (Adware.DoubleD) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extens ions\{e889f097-b0be-471b-89ad-b86b6f04b506} (Adware.DoubleD) -> Quarantined and deleted successfully.

Elementos de Datos del Registro Infectados:
(No se han detectado elementos maliciosos)

Carpetas Infectadas:
C:\Archivos de programa\Internet Today (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420 (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150 (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\Data (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome\content (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\components (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Textual Content Provider (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960 (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360 (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\Data (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome\content (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\components (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050 (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\Data (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome\content (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\components (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Content Management Wizard (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080 (Adware.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Datos de programa\QuestService (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Archivos de programa\QuestService (Adware.DoubleD) -> Delete on reboot.

Ficheros Infectados:
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\CMWIE.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\CPAIEAddOn.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\WSO.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\TCPIE.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\ACEIEAddOn.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Cool Record Edit Pro\wmainfo.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6EC7A487-1F52-472E-BFC5-906609E0A7E3}\RP211\A0067659.rbf (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6EC7A487-1F52-472E-BFC5-906609E0A7E3}\RP211\A0067673.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{6EC7A487-1F52-472E-BFC5-906609E0A7E3}\RP211\A0069311.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\InternetToday.ico (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\InternetToday.skf (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\mfc80.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\Microsoft.VC80.MFC.manifest (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\SkinCrafterDll.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Internet Today\1.2.0.1420\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\WSOCommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\WSOpx.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\Data\config.md (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome.manifest (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\install.rdf (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome\WSOAddOn.jar (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome\content\WSOAddOn.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\chrome\content\WSOAddOn.xul (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\components\WSOFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\components\WSOFFAddOn.xpt (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Web Search Operator\4.2.0.2150\FF\components\WSOFFHelperCompo nent.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\LRI.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\pxtmpdata.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\TP_Config.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\TP_Data.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\TP_DomainExcludeList.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\TP_DomainInterval.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Textual Content Provider\1.2.0.1960\data\TP_KeywordInterval.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\ACECommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\ACEpx.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\Data\config.md (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome.manifest (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\install.rdf (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome\ACEAddOn.jar (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome\content\ACEAddOn.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\chrome\content\ACEAddOn.xul (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\components\ACEFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\components\ACEFFAddOn.xpt (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Automated Content Enhancer\4.2.0.5360\FF\components\ACEFFHelperCompo nent.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\CPACommon.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\CPApx.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\lri.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\Data\config.md (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome.manifest (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\install.rdf (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome\CPAAddOn.jar (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome\content\CPAAddOn.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\chrome\content\CPAAddOn.xul (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\components\CPAFFAddOn.dll (Adware.Agent) -> Delete on reboot.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\components\CPAFFAddOn.xpt (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Customized Platform Advancer\4.2.0.2050\FF\components\CPAFFHelperCompo nent.js (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\cmwsh.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\config.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\data.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\exclude.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\LRI.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\MatchingData.zd5 (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\pxtmpdata.mx (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\unins000.dat (Adware.Agent) -> Quarantined and deleted successfully.
C:\Archivos de programa\Content Management Wizard\1.2.0.2080\unins000.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Datos de programa\QuestService\questservice111.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Archivos de programa\QuestService\questservice.dll (Adware.DoubleD) -> Delete on reboot.
C:\Archivos de programa\QuestService\questservice.exe (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Archivos de programa\Mozilla Firefox\searchPlugins\questservice110.xml (Adware.DoubleD) -> Quarantined and deleted successfully.
C:\Archivos de programa\Mozilla Firefox\searchPlugins\questservice111.xml (Adware.DoubleD) -> Quarantined and deleted successfully.
Responder Con Cita
  post #6  
Antiguo 25/12/09, 07:57:22
Usuario
 
Registrado: dic 2009
Ubicación: Sevilla
Mensajes: 5
Re: Virus paginas publicidad

Despues de instalar los 3 programas cuando tengo que encender el ordenador en modo seguro estoy atascado. No se si pasara en todos los portatiles, el mio es de los que dan por 100 euros la Universidad de Sevilla y trae 2 sistemas operativos, pero cuando elijo el windows no me viene ninguna opcion de modo seguro.
Esto se esta resistiendo mas de lo que pensaba.jeje. Gracias de nuevo.
Responder Con Cita
  post #7  
Antiguo 26/12/09, 19:29:54
Avatar de Rollinguit
Colaborador
 
Registrado: sep 2009
Ubicación: Argentina
Mensajes: 1.790
Re: Virus paginas publicidad

ayy
Cuantas infecciones!!!

Por favor realiza lo siguiente, es importante dado que te faltaron reportes...

paso1

Apaga restaurar sistema

Cita:
el mio es de los que dan por 100 euros la Universidad de Sevilla y trae 2 sistemas operativos, pero cuando elijo el windows no me viene ninguna opcion de modo seguro.
La verdad no sabria que decirte respecto a esto... Pero podrias probar con el siguiente enlace...
Si no lo logras, igualmente continua con los siguientes pasos...

---------------------------------------------------------------------------------------------------------------
paso2
En Modo a prueba de fallos, o Modo normal si no podes... Ejecuta nuevamente:

Lop S & D
Cita:
Haz doble clic en LopSD.exe
Elige el idioma escribiendo la letra correspondiente y pulsa en Enter
Haz clic en "Aceptar (Ok)" en la ventana informativa
Pinchas 2 para elegir la opción (Fix + Hosts)" y a continuación pulsa en Enter
Espera hasta el final de la exploración
Se generará Un informe C:lopR.txtlog , pega el contenido del mismo en tu próxima respuesta
---------------------------------------------------------------------------------------------------------------
Malwarebytes.
Hacé un "escaneo completo". Una vez finalizado, si detecta algo eliges " Mostrar Resultados " y " Quitar lo Seleccionado ".
Si te pide reiniciar, lo haces.

---------------------------------------------------------------------------------------------------------------
paso3

"Iniciar en Modo Normal" y realizar un análisis completo con Panda ActiveScan 2.0


Cita:
En tu proxima respuesta pega los reportes:
Malwarebytes (pestaña "Registros")
Panda ActiveScan 2.0
Lop S&D

Última edición por Rollinguit fecha: 26/12/09 a las 19:32:44.
Responder Con Cita
  post #8  
Antiguo 02/01/10, 14:43:39
Usuario
 
Registrado: dic 2009
Ubicación: Sevilla
Mensajes: 5
Re: Virus paginas publicidad

Al final no pude hacer lo del modo a prueba de fallos pero parece ser que vuestros otros consejos hicieron efecto y no me aparecen las ventanas ya, asi que nada problema solucionado.
Muchas gracias por todo!
Responder Con Cita
  post #9  
Antiguo 02/01/10, 19:41:08
Avatar de Rollinguit
Colaborador
 
Registrado: sep 2009
Ubicación: Argentina
Mensajes: 1.790
Re: Virus paginas publicidad

Ok me alegro que se halla resuelto!
Por cualquier duda que tengas no dudes en consultar...
TEMA SOLUCIONADO
Si deseas reabrir este tema presiona , Cómo reportar mensajes?... Saludos!!!
Responder Con Cita
Respuesta

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
No inicia a modo prueba de fallos, (Sallity) (Terminado/Formateo) Lizetta Temas Solucionados 7 01/12/09 12:44:26
Mi Disco duro esta lleno y no veo donde andres1985 Foro de Virus y Spywares 10 29/07/09 13:08:09
Re: virus en el sistema chester_00 Foro de Virus y Spywares 19 21/05/09 00:42:12
Ayuda con estos problemas!!!!! (Terminado - Formateo) GASOLINAMAN Temas Solucionados 18 22/02/09 16:08:24
virus persistentes (Solucionado) malu lara Temas Solucionados 24 05/12/08 19:08:06




Todas las horas son GMT -4. La hora es 21:42:07.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31