Guía de eliminación de Trojan FakeAlert

Nivel de peligrosidad:
8/10
Puntuar este artículo:
Mensajes (0)
Veces que se ha leído este artículo: 21811
Categoría: Trojans

Trojan FakeAlert es una falsa alerta que es utilizada en los ataques contra equipos por diversas aplicaciones de rogue antispyware. No es una verdadera amenaza en itelf, pero en su lugar una mentira fabricada compuesta por desarrolladores de rogueware para asustar a los consumidores a pagar por su software no vale para nada, como el troyano Zlob de G.

Este troyano se infectar el equipo sigilosamente y cambiar el fondo de escritorio en un mensaje de seguridad falso que afirma que el PC está infectado. No ayudará a simplemente intentar deshacerse de Trojan FakeAlert, es necesario destruir su aplicación de rogue de padre.

Son procesos asociados con Trojan FakeAlert también a eliminarse:

Rpnqrdnm.exe
Runsrv32.exe
Tcpservice2.exe
Susp.exe
Users32.exe

Aparte de los fondo de escritorio ha cambiado, Trojan FakeAlert hará que el PC funcione mucho más despacio por consumir valiosos recursos del sistema y causa mayor comportamiento errático del sistema. Todo esto está además de las actividades malintencionadas rogue de padre Trojan FakeAlert aún hará que sus víctimas.

Restauración de privacidad y seguridad de su PC mediante el poder de la eliminación de una herramienta de seguridad genuina, actualizada y poderoso que no sólo destruirá Trojan FakeAlert, sino también protección contra futuros ataques similares. Esto sigue siendo una de las más seguras y el futura de las formas más eficaces de completamente borrar Trojan FakeAlert e invertir en el buen funcionamiento del equipo.

Descarga desinstalador para Trojan FakeAlert *
*El analizador de SpyHunter se puede descargar de esta página y sirve como herramienta de detección. Para utilizar su función de eliminación, será necesario adquirir la versión completa de SpyHunter.

Datos técnicos del manual de eliminación para Trojan FakeAlert:

Archivos modificados/creados en el equipo:

# Nombre del archivo Tamaño del archivo (en bytes) Hash del archivo
1ddwlxtqqwt.dll
2nmwegbsf.dll
3tmpFile1.exe
4Winpu73.sys
5asam.exe60672 bytesMD5: ddaa724c3a09ba84557b169100ab4b57
6digprot.exe1720320 bytesMD5: 47dd3ec17df55edb068160f7d8b4e50d
7movie.exe144384 bytesMD5: 1556114ae5d666dbd078178d55b3f8aa
8bolivar25.exe
9av.exe189952 bytesMD5: ea85a09521ff0085ca4a0e49f704e9c1
10egmulhxk.dll
11dsoundm.dll
12setup2.exe389120 bytes
13qndsfmao.dll
14sysosa.dll-removed_skip221696 bytes
15pbukv2.dll
16D3DCompiler_3.dll
17tuvvvsq.dll
18wbxdpgfevkl.dll
19vregfwlx.dll
20Mjr.exe174592 bytesMD5: dac437b5756b087b305bb559a8e76297
21dopfwrldxw.dll
22lfstbwvd.dll
2354.exe180224 bytesMD5: f9a0d701fd2cdced81414047f18b082c
24AntivirusXP2008Installer.exe1394694 bytesMD5: 759446725a2649dae0409662df3086da
25dfxvideo.dll
26tuvtr.dll
27pandsf.dll
28khfefdc.dll
29ecard.exe145920 bytesMD5: 6c9c63fcfa143947163fba6e1fc0c6c6
30khhhh.dll
31winconfig.dll
32bolivar23.exe
33setupxv.exe6042551 bytesMD5: 972b1cf5487341996e790df97e1bdb55
34nfavxwdbsxb.dll
35qomjhge.dll
36kgqfwelteax.dll
37winhelper86.dll
38explorer32.exe
39odsagy.dll
40apmanager.exe1782272 bytesMD5: be1941d8f63042c9e950230069bad328
41ppx32.exe106496 bytesMD5: b8d09e39d7e04e56dbe25c61c38cae2e
42rygwz7313434.exe
43G6-tmp_.exe
44cbxyvwv.dll
45brastk.exe
46iinqyl.dll
47fqbewlna.dll
48fdkowvbp.dll
49restorer32_a.exe46803 bytes
50nqgpedlr.dll
51wvfsrqab.dll
52flym.dll
53svchost.exe28672 bytesMD5: 918c9e242f1b923e6a5074b58626c6b4
54helpers32.dll97280 bytesMD5: e73e6c22579cfbcecab2c1270308a08b
55hotfix.exe649728 bytesMD5: 14eed33416c1b010e53074fb92b04e2d
56data.exe377856 bytesMD5: f513df828371461547fb2cf37a026e13
57byxww.dll
58ddwlxtqxdm.dll
59qomlljk.dll
60efcdb.dll
61winlogon32.exe155136 bytesMD5: 630b42350a33a756fc8d6bc9c09bd252
62tag12.exe
63gcqltg.dll
64dssc32.exe.bat
65wmsdk64_32.exe449024 bytesMD5: 15ee5fc34c2b99bdf27e0d40029ea1af
66sysvol32.dll
67evgratsm.dll
68rqrstut.dll
69pwnbho.dll
70sysosa.dll
71ausctv32a.dll
72tgfaifwm.dll
73ltzqai.exe98304 bytesMD5: 3423e34fd288845a1b0b76de00a8a1b1
74temlxopqwsp.dll
75_helper.dll
76wbxdpgfekvg.dll
77nfavxwdbgfw.dll
78avicap3.dll
79toprates.dll-removed_skip229888 bytes
80ljjifeb.dll
81dkwqgnbe.dll
82fcccawv.dll
83zayezeru.exe
84defender.exe551424 bytesMD5: 3e2d697eaef87a762f9fa69827a9f1e8
85c.exe
86ckvo.exe
87ee51.dll
88ddcyvtt.dll
89braviax.exe14348 bytes
90vipextmdx.dll
91dxpvqlmpdn.dll
92bindsrv2.exe.bat
93dddesot.dll485888 bytes
94dcggain.dll
95mljjh.dll
96vanwxemgaet.dll
97awtroll.dll
98%TEMP%
99vmgspntbmtk.dll
100video234.cfg.exe
101video232.cfg.exe
102ddwlxtqowd.dll
103ddwlxtqgmq.dll
104pwnbho.dll-removed_skip233984 bytes
105~wa6psetup.exe
106dgksvbpn.dll
107msxml71.dll241668 bytes
108isc_cpl.cpl
109vmgspntbmaq.dll
110vltdfabw.dll
111gebcd.dll
112wmsdkns.exe
113kgxmotapqtm.dll
114smss32.exe44544 bytesMD5: df706796687b089113d5b49dbcc93365
115video1055.cfg.exe
116vscan.tsi
117gksraemq.dll
118wbxdpgfeasv.dll
119ctl3d3.dll
120pandsf.dll-removed_skip227840 bytes
121xmljacodec.dll
122isc_ui.exe
123domnftwpto.dll
124slnjpia.exe295168 bytesMD5: d02f69b585c4417b220163037c965fd6
125dsktbwfe.dll
126getfn32.dll
127cfgmgr32a.dll
128ddwlxtqfls.dll
129msctrl.exe13824 bytes
130dhcpmonu.dll
131smchk.exe
132mscscc.dll
133vxddsk.exe
134spads.dll
135kvxqmtre.dll
136ccsrs.exe180736 bytesMD5: 767735da8434129e0235c1bb5cf1a9aa
137admpars.dll
138karna.dat
139elfwgps.dll
140jkklm.dll
141huriscos.dll
142bgrqfetx.dll
143msvidc32.dll
144msiconf.exe
145qyliehelper.dll
146poswin.dll-removed_skip225792 bytes
147leosrv.dll
148browsew.dll
149lsass.exe48472 bytesMD5: 0cf8f62f8d7f51041e244c584ad0d2eb
150mstre8.exe
151hizapego.dll127488 bytesMD5: 50644facf93ec2096307a5431f8b8890
152Hsf.exe124928 bytesMD5: 627f884ec61a56e2f7b6a329e8fcb56e
153amg.exe
154vtstt.dll
155xrdwbfgn.dll
156mujuyizi.dll76288 bytesMD5: 9cff03b4ee4783537f578824f54d4635
157enqvwkp.dll
158vrmdtneg.dll
159poswin.dll
160gxvpsafm.dll
161csrssc.exe22017 bytes
1629996.exe
163uesiuqcr.exe
164JBXNcUIHiptVjhE.exe1245696 bytesMD5: 2bac879b6cdf577969d2f51d4e435289
165secureapp70700.exe1051136 bytesMD5: 9b58ceeb16c05a792701ee2f36b9e086
166uoyzsydz.exe89561 bytes
167ezzhjmt.dll
168a.exe138752 bytes
169ssa.dll
170ddwlxtqdpn.dll
17155.dll180224 bytesMD5: 6dbc9f5345a5731cea9024a4d41c2c52
172m.28317.tmp.exe4152832 bytesMD5: 13366d0166c8a0019f20c325c0262090
173b.exe
174eqvwamkl.dll
175SkyMetin2.exe421888 bytesMD5: 6460ba674f6bc8da471c39f2d75721d9
176mgmrwmrv.exe
177inbrspu.exe298752 bytesMD5: 60bb9f545ad1bb7cbe07fa655766947c
178efcdcbx.dll
179fcccdcb.dll
180kiasys.dll
181qopop.dll
182kgxmotapktx.dll
183nfavxwdbtlk.dll
184wnslvxtf.dll
185tyshb36rfjdf.dll
186edfqvrw.dll
187wbxdpgfeqod.dll
188wayebomi.exe
189wndutl32.dll
190frmwrk.exe
191ursrr.dll
192bonrep.dll
193xwusuhzh.exe
194helper32.dll
195Shooter.exe86016 bytesMD5: 13e2c9d0be159f06a91b66889ade6aa4
196toprates.dll
197dbxdrv.dll
198epxonwo.dll
199sstqr.dll
200erpobmsw.dll
201ssqopqr.dll
202smchk.exe.bat
203UniKeyNT.exe261632 bytesMD5: 862fc3dd4330b4678a864e657140e1b4
204vmgspntbbtx.dll
205rosqxvmn.dll
206hsari3jndsbfi73.dll
207vwsrfton.dll
208dbldrv.dll
209svjnqhn.exe298752 bytesMD5: 2bcb166690e143bf7a9c60f777bd1971
210sofos32x.dll
211ms18_word.exe
212WinRAR.exe968704 bytesMD5: a8cffd1533a7854d59da5732bcc6d165
213svchast.exe428032 bytes
214cndr32a.dll
215G3-tmp_.exe
216efedd.dll
217winsystems.dll
218adgpfoxs.dll
219svchost.exe:exe.exe40448 bytesMD5: f7cd5c4d11d1a4cf389af25832790a7c
220perce.jpg.exe
221mpfanvqg.dll
222vturppp.dll
223password.exe135680 bytesMD5: bb855921018f1a725adcbfb2d1525317
224hgghfec.dll
225dataclenu.dll
226outtheoutat.exe
227sqvgnrpx.dll
228aivskurq.dll
229domnftwqpd.dll
230agpqlrfm.exe
231ekxdvft.dll
232bolivar24.exe
233adc32.dll161792 bytesMD5: 43f9b2064491e89d3488f8e565a1661b
234AcroIEHelper.dll
235clbcatqb.dll
236packupdate106_231.exe203776 bytesMD5: a8304ee6efa754480f599c195523623c
237frmwrk32.exe23552 bytes
238hggdbab.dll
239AntiMalwarePro.exe19705008 bytesMD5: 39ceaadf0056729e32416b407fe70e09

Modificaciones del registro:

Se han creado las siguientes claves de registro:

  • \YUREA.exe
  • Software\Microsoft\Internet Explorer\Toolbar {E717DC9B-B2DA-4CB5-9DA2-EEEC2516ED3A}
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {C5AF42A3-94F3-42BD-F634-3604832C897D}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {4B87885D-104A-4C24-A9BB-7D795B8039A2}
  • Software\Microsoft\Internet Explorer\Toolbar {1C7295ED-FCE6-4F90-9624-EE46F6D8DD59}
  • {BAAA759D-56F0-428c-B8DA-827EA3B08C2C}
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {e31f5c72-8e0d-4921-8375-9573746c170c}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run procgdwb32.exe
  • Software\Microsoft\Internet Explorer\Toolbar {12A25CE9-0A93-4074-9516-A5B1A83141C9}
  • Software\Microsoft\Internet Explorer\Toolbar {6BBD76F0-FDBB-4D2D-AD36-5C922F510AF5}
  • SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal Winpu73.sys
  • Software\Microsoft\Internet Explorer\Toolbar {79293B31-D790-4B64-AAD7-8D47CED92E54}
  • {2C70168B-97CE-4f31-B85D-1FEC5002721D}
  • {DD651081-A909-45ad-BD71-2335B0ADE043}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad kvxqmtre
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {EB6ABD3D-F2E7-4807-B9B6-F62AE3021A17}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run procgdyu32.exe
  • Windows Framework
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {B1E0C6DC-BBEA-4DE1-BFCA-70362CD86579}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {63BB2189-05DB-4E6B-9542-82C9A1C53C0B}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {DD75AB82-CBE3-4096-825E-C24BFA82B5FF}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {2969BC53-0B3D-4043-9C3C-ED7D3945C23D}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {ED2FC0D9-9ABF-42E3-96F8-049740A1C435}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run outtheoutat
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {86ACF01A-98C0-4051-ADD0-AEAA78A7FCBE}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {D92C8B24-6818-4992-AFDD-7E96C92E28BD}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {A8160B32-92A5-48CB-839D-D4C5D05054E4}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run procgdbl32.exe
  • Software\Microsoft\Internet Explorer\Toolbar {AE06A911-A5A5-4DFA-9ADA-1DF21EAB25C6}
  • Software\Microsoft\Internet Explorer\Toolbar {257F0149-3042-4F1E-97A1-7602460E97EE}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {AB802BE5-5918-4875-954F-C878E08FC60E}
  • Software\Microsoft\Internet Explorer\Toolbar {DEEAF2E6-CBD6-4E9A-B7A7-C17C7C49F697}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {9638003E-5BE9-4A57-98BA-CA691478858A}
  • Software\Microsoft\Internet Explorer\Toolbar {8202F040-3566-46E4-920F-92504E90E170}
  • {7DD4A7AC-A3F1-4495-884A-7947C5B89108}
  • Software\Microsoft\Internet Explorer\Toolbar {70EC7CA3-2FFC-4E43-97DE-3C91B2F65D36}
  • Microsoft\Windows NT\CurrentVersion\Winlogon\Notify ddcCSKDu
  • brastk
  • SYSTEM\CurrentControlSet\Control\SafeBoot\Network Winpu73.sys
  • Software\Microsoft\Internet Explorer\Toolbar {8BCDB708-77A2-4C1C-B35C-C81FDCC045EF}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {64D115E0-EF9F-4980-AAF3-F1BC78E0AF05}
  • Software\Microsoft\Internet Explorer\Toolbar {2E7789D2-AEF7-45BE-8CBF-2CEF5EF9F03B}
  • Software\Microsoft\Internet Explorer\Toolbar {1817219B-D6DC-450A-B913-41F12BC05019}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {C70BCB6B-51D7-40FE-8A88-CD5FA0088646}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {3BB35E2E-9AE6-4FDE-A691-9E5BDBD93044}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {6134A39A-C1EA-4E6F-B6D2-9ED5D9CC03B5}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run procgdyg32.exe
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {65A214E4-E5E7-4685-8637-00E7B48725F0}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {879969F9-CDF3-4846-BE1F-89A9E43FF30F}
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run onat
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {020487CC-FC04-4B1E-863F-D9801796230B}
  • {9754B85A-3B34-4969-BE1F-CD03227E9470}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {106198B5-9A3D-4D97-8DEF-845A1FDCD787}
  • Software\Microsoft\Internet Explorer\Toolbar {92162A1C-A9E3-4C0C-BCDC-2996E8406887}
  • smss32.exe
  • SOFTWARE\Microsoft\Windows\CurrentVersion\Control Panel\Cpls System Security Center
  • Software\Microsoft\Internet Explorer\Toolbar {44DBA688-6E83-4538-BB5B-982A3C7A4E12}
  • Software\Microsoft\Internet Explorer\Toolbar {B3A57C90-D66D-42D7-AAC2-CBB2841008BD}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {27cb634d-c84e-4c00-9b53-f5523601dbad}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {8A11BBE3-E0B5-40FB-9D86-E08A52B51B47}
  • Software\Microsoft\Internet Explorer\Toolbar {14E52265-CCA3-4F78-A21B-88F4EE6E78C1}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {8255476E-97F9-470F-9190-031DD1941B74}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {392A638F-8459-4F66-A990-ECA6292B8BFE}
  • Software\Microsoft\Internet Explorer\Toolbar {7D787886-3B24-401C-A7BC-AF950A1C3CAC}
  • Software\Microsoft\Internet Explorer\Toolbar {74415C3D-DB1D-40BF-9F91-1D1A31027A31}
  • Monopod
  • isc_ui.exe
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {695AD9B9-B97E-4F91-8B6F-B1BD73937505}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {1EDC0625-1B0F-467C-9889-817C3DE3D37C}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {326E1D30-5343-4B85-8BD5-DF6852DAA6F3}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {6716F10B-D4FD-4CF7-8A96-05D841657D3C}
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {9c87cb31-93d0-4f3e-a360-4a91ff77aeb7}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {7335E3EA-1F69-4622-9DA6-EA926241B097}
  • SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN forandby
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {61D1EA3E-A930-4BEB-B16B-D7212B5C5A4C}
  • winupdate86.exe
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run orandoutby
  • Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run procgdnb32.exe
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {1F98C59B-DB4B-454B-98C8-95D0668B11A6}
  • sysgif32
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {FCCD9F7B-5BF3-4DC4-B131-CE069F8A62AB}
  • Software\Microsoft\Internet Explorer\Toolbar {8B6860DE-2CFA-4713-B42F-DC06D008DC54}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {BF53502D-3BEF-4273-9925-89D7526A5F87}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {2016a466-91a2-43c6-97d8-2fd380f065ef}
  • Software\Microsoft\Internet Explorer\Toolbar {5FF6FACA-CFF7-499D-AB5B-8EEA9CE80739}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {88E2C28F-80C8-49BA-94A3-A5D4930B4A23}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {FF20AF38-AD56-4361-AE03-339130767E26}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {59B4236E-2A39-4942-8278-980630D6D26F}
  • Software\Microsoft\Internet Explorer\Toolbar {F1348462-25DE-4F17-869F-BAAFE04DD599}
  • Software\Microsoft\Internet Explorer\Toolbar\WebBrowser {5B452B01-12C9-4286-81D9-2308AEB3CD94}
  • Software\Microsoft\Internet Explorer\Toolbar {AF2AF78D-33A4-4BA6-AFEC-5F453630DFBE}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {7A957AFD-F995-4CDD-8D03-CB83B3672855}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad eitheror
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {1CFB1B63-FEB6-4FF2-9B5F-28FA70D6A049}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {9BAB10CC-0EE5-4B15-9017-B7AF2326724D}
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {8d332d3a-0114-4492-8521-c2b93b4db160}
  • Microsoft\Windows NT\CurrentVersion\Winlogon\Notify geBqRKBt
  • Personal Security Center Monitor
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {D355A751-C166-4351-8112-0EB0775E1B16}
  • Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {99f8405b-63d1-421a-83bb-7b4b0642ac28}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler {A249BC15-23F2-42AD-F4E4-00AAC39C0004}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {264BFEF2-1935-497C-9FD4-6EEF1FAA2764}
  • SOFTWARE\Microsoft\Internet Explorer\Toolbar {F661BA6B-FAF4-4165-A701-F65A7585AC91}
  • SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad evgratsm
  • SBI

Publicar una respuesta

Tu email no se hará público.

Nombre
Sitio web
Mensaje

Introduzca los números en el cuadro a la derecha *