• Con el fin de ofrecerle una experiencia de navegación adaptada a sus necesidades le informamos de que esta web utiliza cookies. Puede deshabilitarlas en las opciones de su navegador web. Mas info Politica de Cookies Free data recovery software
 

Eliminar Security Inspector 2010

razor

Administrador Global del Foro
Miembro del Staff
Administrador
El virus Security Inspector 2010 es una versión apenas actualizada de Antivirus Solution 2010 y Antivirus Studio 2010. Puede ingresar a tu ordenador de maneras diferentes, quizás a través de un gusano en un mensaje de correo electrónico, o desde un sitio de engañoso, u oculto en un torrent. Sea como sea Security Inspector 2010 pone a tu ordenador patas arriba y hace todo lo que está a su alcance para quitarte un poco de dinero.

Security-Inspector-2010.jpg



Apenas este virus ingresa en tu ordenador, notarás que las cosas funcionan de manera un poquito extraña. El programa de seguridad puede apagarse, el navegador redirigirlo hacia cualquier sitio, y tu disco duro trabajar a paso de tortuga. Pero la consecuencia más obvia es el ridículo desfile de anuncios intrusos de Security Inspector 2010 hablando de todo tipo de virus detectadas en tu ordenador. El fin es que adquieras una version de "pago"

Eliminar Security Inspector 2010.

Haz una copia de seguridad del registro.

Eliminar los procesos de Security Inspector 2010
securityhelper.exe
Security_Inspector_2010.exe
securitycenter.exe

Eliminar las DLLs de Security Inspector 2010
%UserProfile%\Application Data\Security Inspector 2010\taskmgr.dll

Detectar y eliminar los archivos de Security Inspector 2010
%Temp%\_2.tmp
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Inspector 2010.lnk
%UserProfile%\Application Data\Security Inspector 2010\Security_Inspector_2010.exe
%UserProfile%\Application Data\Security Inspector 2010\securitycenter.exe
%UserProfile%\Application Data\Security Inspector 2010\securityhelper.exe
%UserProfile%\Start Menu\Programs\Security Inspector 2010.lnk
%UserProfile%\Start Menu\Programs\Security Inspector 2010\Activate Security Inspector 2010.lnk
%UserProfile%\Start Menu\Programs\Security Inspector 2010\Help Security Inspector 2010.lnk
%UserProfile%\Start Menu\Programs\Security Inspector 2010\How to Activate Security Inspector 2010.lnk
%UserProfile%\Start Menu\Programs\Security Inspector 2010\Security Inspector 2010.lnk
Eliminar valores de registro de Security Inspector 2010
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Security Inspector 2010
HKEY_CURRENT_USER\Software\Security Inspector 2010
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “2kowmeuswvw3″
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Security Inspector 2010″
Borrar los directorios de Security Inspector 2010
%UserProfile%\Application Data\Security Inspector 2010\
%UserProfile%\Start Menu\Programs\Security Inspector 2010\

Via: 411spyware.com
 
Gracias por la info razor!

Añado algunos datos:

Entradas mostradas en un log de HijackThis:

CODE, HTML o PHP Insertado:
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\Security_Inspector_2010.exe

O4 - HKCU\..\Run: [45cwseuwf8sk] C:\Documents and Settings\{username}\Desktop\securetystudio.exe
O4 - HKCU\..\Run: [Security Inspector 2010] "C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\Security_Inspector_2010.exe" /STARTUP

Nota: 45cwseuwf8sk es un nombre al azar.


Log de Malwarebytes Antimalware:

CODE, HTML o PHP Insertado:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 5175

Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

11/23/2010 2:28:07 PM
mbam-log-2010-11-23 (14-28-07).txt

Scan type: Quick scan
Objects scanned: 126139
Time elapsed: 4 minute(s), 5 second(s)

Memory Processes Infected: 1
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 2
Folders Infected: 2
Files Infected: 11

Memory Processes Infected:
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\Security_Inspector_2010.exe (Trojan.FakeAlert) -> Unloaded process successfully.

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\Security Inspector 2010 (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Security Inspector 2010 (Rogue.SecurityInspector) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\security inspector 2010 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\45cwseuwf8sk (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Folders Infected:
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010 (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010 (Rogue.SecurityInspector) -> Quarantined and deleted successfully.

Files Infected:
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\Security_Inspector_2010.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Desktop\securetystudio.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\securitycenter.exe (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\securityhelper.exe (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Application Data\Security Inspector 2010\taskmgr.dll (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010\Activate Security Inspector 2010.lnk (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010\Help Security Inspector 2010.lnk (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010\How to Activate Security Inspector 2010.lnk (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010\Security Inspector 2010.lnk (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Start Menu\Programs\Security Inspector 2010.LNK (Rogue.SecurityInspector) -> Quarantined and deleted successfully.
C:\Documents and Settings\{username}\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Inspector 2010.LNK (Rogue.SecurityInspector) -> Quarantined and deleted successfully.

Malwarebytes es capaz de eliminar la infección por completo.

Vía: Malwarebytes Forum
 
Última edición:
Excelente. Gracias master!
 
Back
Arriba