Me ha llegado un mensaje en el foro. El mensaje era un mensaje muy raro, es decir, con símbolos y caracteres raros. Os podría captura, pero el mensaje se fue. La cosa es que se me ha abierto una pestaña con un link no seguro. Rarísimo. Más tarde, para hacer la captura, he entrado y ya no estaba...
foro.elchapuzasinformatico.com
hola, he hecho el primer paso y luego he hecho el segundo el adwcleaner y me a encontrado virus pero me pone que a encontrado virus en instalado software preintalado que hago ?
este es el reporte de adwcleaner :
# -------------------------------
# Malwarebytes AdwCleaner 8.3.0.0
# -------------------------------
# Build: 06-29-2021
# Database: 2021-08-09.1 (Cloud)
# Support:
Malwarebytes Support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 08-28-2021
# Duration: 00:01:06
# OS: Windows 7 Home Premium
# Scanned: 31998
# Detected: 33
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
PUP.Optional.SafePCKit HKCU\Software\Sunisoft
PUP.Optional.SafePCKit HKU\S-1-5-21-1385129441-4145451219-3551098528-1137\Software\Sunisoft
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
PUP.Optional.Legacy initialpage123
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.AcerArcadeDeluxe Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{AA4BF92B-2AAF-11DA-9D78-000129760D75}
Preinstalled.AcerIdentityCard Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Identity Card
Preinstalled.CyberLinkMediaEspresso Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}
Preinstalled.CyberLinkMediaEspresso Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{E3739848-5329-48E3-8D28-5BBD6E8BE384}
Preinstalled.GatewayWelcomeCenter File C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Welcome Center.lnk
Preinstalled.HPCleanFLC File C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
Preinstalled.HPMediaSmart Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
Preinstalled.HPMediaSmart Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{01FB4998-33C4-4431-85ED-079E3EEFE75D}
Preinstalled.PackardBellPowerManagement Folder C:\Program Files\PACKARD BELL\PACKARD BELL POWER MANAGEMENT
Preinstalled.PackardBellPowerManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Power Management
Preinstalled.PackardBellPowerManagement Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{3DB0448D-AD82-4923-B305-D001E521A964}
Preinstalled.PackardBellRegistration Folder C:\Program Files (x86)\PACKARD BELL\REGISTRATION
Preinstalled.PackardBellRegistration Folder C:\Program Files\PACKARD BELL\REGISTRATION
Preinstalled.PackardBellRegistration Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Packard Bell Registration
Preinstalled.PackardBellUpdater Folder C:\Program Files\PACKARD BELL\PACKARD BELL UPDATER
Preinstalled.PackardBellUpdater Folder C:\ProgramData\PACKARD BELL\PACKARD BELL UPDATER
Preinstalled.VideoWebCamera File C:\Users\Public\Desktop\Video Web Camera.lnk
Preinstalled.VideoWebCamera Folder C:\Program Files (x86)\VIDEO WEB CAMERA
Preinstalled.VideoWebCamera Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIDEO WEB CAMERA
Preinstalled.WildTangentGamesBundle File C:\Users\Public\Desktop\WildTangent Games App - packardbell.lnk
Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDTANGENT GAMES
Preinstalled.WildTangentGamesBundle Folder C:\Program Files (x86)\WILDTANGENT GAMES\APP
Preinstalled.WildTangentGamesBundle Registry HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Ext\Preapproved\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App
Preinstalled.WildTangentGamesBundle Registry HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
Preinstalled.WildTangentGamesBundle Registry HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A97880C-7DD3-4C6E-8DE0-881B1FC02BE6}
AdwCleaner[S00].txt - [1453 octets] - [20/05/2019 21:49:53]
AdwCleaner[C00].txt - [1563 octets] - [20/05/2019 21:50:25]
AdwCleaner[S01].txt - [1397 octets] - [20/05/2019 21:53:04]
AdwCleaner[C01].txt - [1563 octets] - [20/05/2019 21:54:42]
AdwCleaner[S02].txt - [1519 octets] - [20/05/2019 21:58:07]
AdwCleaner[C02].txt - [1685 octets] - [20/05/2019 22:00:11]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S03].txt ##########