locked
Pantalla azul - bad_pool_header error RRS feed

  • Pregunta

  • Buenas, tengo una consulta sobre este error. Creo mas o menos saber por donde viene el problema pero no soy ningun experto así que necesitaría ayuda

    Hace un rato descargue y hice un análisis completo con MBAM, este es el informe:
    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Fecha del Análisis: 11-Apr-14
    Tiempo de Análisis: 12:50:19 PM
    Logfile: a.txt
    Administrador: Si

    Versión: 2.00.1.1004
    Malware Database: v2014.04.11.08
    Rootkit Database: v2014.03.27.01
    Licencia: Prueba
    Malware Protection: Activado
    Malicious Website Protection: Activado
    Chameleon: Desactivado

    SO: Windows 7 Service Pack 1
    CPU: x64
    Archivos del Sistema: NTFS
    Usuario: manuel

    Tipo de Análisis: Análisis Completo
    Resultado: Completado
    Objetos Analizados: 245190
    Tiempo Transcurrido: 20 min, 6 seg

    Memoria: Activado
    Inicio: Activado
    Filesystem: Activado
    Archivo: Activado
    Rootkits: Desactivado
    Shuriken: Activado
    PUP: Activado
    PUM: Activado

    Procesos: 0
    (No malicious items detected)

    Modulos: 0
    (No malicious items detected)

    Llaves del Registro: 27
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\CLASSES\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\CLASSES\IESmartBar.BHO, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IESmartBar.BHO, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, Quarantined, [2aea9297bac160d6bab27ec85fa335cb], 
    PUP.Optional.Softonic.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, Quarantined, [b064c1681863b1851e693bd59b67a858], 
    PUP.Optional.Softonic.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{5018CFD2-804D-4C99-9F81-25EAEA2769DE}, Quarantined, [b064c1681863b1851e693bd59b67a858], 
    PUP.Optional.Softonic.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E87806B5-E908-45FD-AF5E-957D83E58E68}, Quarantined, [9d773fea176426104345f917cf3339c7], 
    PUP.Optional.Softonic.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E87806B5-E908-45FD-AF5E-957D83E58E68}, Quarantined, [9d773fea176426104345f917cf3339c7], 
    PUP.Optional.Bandoo.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{9D717F81-9148-4F12-8568-69135F087DB0}, Quarantined, [7e96f0396b10ad89f30f97b040c21ce4], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, Quarantined, [0b09dd4cdba05dd90e1578cf6a98936d], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, Quarantined, [7f95e445760547efbd6773d42ed4768a], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, Quarantined, [5db759d0f3881620a5137ccac240857b], 
    PUP.Optional.SearchQu, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{99079a25-328f-4bd4-be04-00955acaa0a7}, Quarantined, [7b9945e442391f171b24b36107fba957], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent, Quarantined, [59bbba6fd9a224126046049df211817f], 
    Adware.EoRezo, HKLM\SOFTWARE\WOW6432NODE\FREESOFTTODAY, Quarantined, [23f19e8b7605a195c0a732609b6854ac], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, Quarantined, [bf55da4f2c4f62d476a3e88f6f93bc44], 
    PUP.Optional.Aartemis.A, HKLM\SOFTWARE\WOW6432NODE\AARTEMISSOFTWARE\aartemishp, Quarantined, [060ed4558eed82b42a31492f99697090], 
    PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent, Quarantined, [9a7a8a9f5625e1551a8cadf4e122bd43], 
    PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, Quarantined, [1df79396b3c8a591fe831f5135cdf709], 
    PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, Quarantined, [dc38ce5be09b51e54175e3aabc477090], 
    PUP.Optional.DataMngr.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Datamngr, Quarantined, [b95b0821adcee65056e0f894e91ac739], 
    PUP.Optional.CrossRider.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Quarantined, [e72da98047347db9ac46287851b2eb15], 
    PUP.Optional.InstallCore.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, Quarantined, [e0349099bdbe69cd79a7ef8717eb4ab6], 
    PUP.Optional.InstallCore.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, Quarantined, [cf4558d18eedf0467edfb5d737cc1ce4], 
    PUP.Optional.Softonic.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Quarantined, [24f0ec3daad1fa3c5fcfcd970af83ac6], 

    Valores del Registro: 9
    PUP.Optional.Iminent.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS|{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, Quarantined, [5db759d0f3881620a5137ccac240857b], 
    PUP.Optional.SearchQu, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{99079A25-328F-4BD4-BE04-00955ACAA0A7}, Searchqu Toolbar, Quarantined, [7b9945e442391f171b24b36107fba957]
    PUP.Optional.Iminent.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\URLSEARCHHOOKS\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}, Quarantined, [e52f8e9bee8d52e406b261e59b67ed13], 
    PUP.Optional.SearchQu, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{99079a25-328f-4bd4-be04-00955acaa0a7}, Quarantined, [ba5a56d38af137ff72cd69ab946ee51b], 
    PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS\{336D0C35-8A85-403a-B9D2-65C292C39087}, Quarantined, [8f858e9b09728fa70597b0600ff330d0], 
    PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{336D0C35-8A85-403A-B9D2-65C292C39087}, C:\Program Files\Web Assistant\Firefox, Quarantined, [8f858e9b09728fa70597b0600ff330d0]
    PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{336D0C35-8A85-403A-B9D2-65C292C39087}, C:\Program Files\Web Assistant\Firefox, Quarantined, [8f858e9b09728fa70597b0600ff330d0]
    PUP.Optional.HomePageProtector.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS\{336D0C35-8A85-403a-B9D2-65C292C39087}, Quarantined, [0e0671b8205b00360c9068a8fc069a66], 
    PUP.Optional.InstallCore.A, HKU\S-1-5-21-646862341-3737418411-1931800108-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0L1K1I1U1StM0U1J, Quarantined, [cf4558d18eedf0467edfb5d737cc1ce4]

    Datos del Registro: 0
    (No malicious items detected)

    Carpetas: 9
    PUP.Optional.Iminent.A, C:\Users\manuel\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl, Quarantined, [868efa2fbfbc1323fc658bce55ada45c], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy\E8DA766727FF407F98086B92FB4FDAA7, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy\OpenCandy_E8DA766727FF407F98086B92FB4FDAA7, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.SimilarSites.A, C:\Users\manuel\AppData\Roaming\SimilarSites, Quarantined, [5cb82900097249ed725ce27fd32fc838], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 

    Archivo: 79
    PUP.Optional.GenericExt.A, C:\Users\manuel\AppData\Roaming\igdhbblpcellaljokkpfhcjlagemhgjl\minibarchrome.exe, Quarantined, [21f312170675092d7abb310c39c731cf], 
    PUP.Optional.SmartBar, C:\Users\manuel\AppData\Roaming\OpenCandy\E8DA766727FF407F98086B92FB4FDAA7\LinkuryInstaller_p1v16.exe, Quarantined, [cb4914156f0c0f2750c42d01ae52a65a], 
    PUP.Optional.Iminent.A, C:\Users\manuel\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage, Quarantined, [5fb5250438435dd9d0d02c392fd36a96], 
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\searchplugins\softonic.xml, Quarantined, [df35ed3c4833cc6abcc785e241c1827e], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy\E8DA766727FF407F98086B92FB4FDAA7\3175.ico, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy\E8DA766727FF407F98086B92FB4FDAA7\EBB77268-338F-4C6A-8590-AD88FED26F4A, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.OpenCandy, C:\Users\manuel\AppData\Roaming\OpenCandy\E8DA766727FF407F98086B92FB4FDAA7\OCBrowserHelper_1.0.3.85.dll, Quarantined, [da3a16130b70f34309803a1fe121e11f], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\chrome.manifest, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\install.rdf, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\incredibar.css, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\incredibar.xul, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\mtstart.js, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\tmplt.js, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\arwDwn.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\help_16.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\home.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\logo.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\privecy_16_hot.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\specialoffer.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\tellafriend.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\uninstall.gif, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ae.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\bg.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ch.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\cn.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\cz.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\de.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\eg.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\en.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\es.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\fr.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\gr.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\he.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\il.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\it.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ja.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\jp.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\nl.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\no.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\pl.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\pt.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ro.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ru.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\sa.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\se.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\sv.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\tr.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\ua.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Incredibar.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\extensions\ffxtlbr@incredibar.com\content\imgs\flgs\us.png, Quarantined, [5bb98e9b007b58de70907be8d92947b9], 
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.admin", false);), Replaced,[4fc59d8c85f65cdabb3838109d676e92]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.aflt", "orgnl");), Replaced,[fe161217542736008b683e0a3fc560a0]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.autoRvrt", "false");), Replaced,[b85c5ecb6417a49238bb15338b79827e]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.dfltLng", "es");), Replaced,[39db1c0d7efd43f39360ce7a41c32fd1]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.dspNew", "Search the web (Softonic)");), Replaced,[ca4ac5643744a5919a59c583030107f9]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.dspOld", "");), Replaced,[779d38f1daa10e28896a80c82cd8837d]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.excTlbr", false);), Replaced,[54c0c564cdae171fe112d078de26fc04]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.hpNew", "http://search.softonic.com/MON00032/tb_v1?SearchSource=13&cc=");), Replaced,[71a3c465e19ac76ffef590b852b254ac]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.hpOld", "");), Replaced,[29eb89a085f60d29bd367ccc9c689070]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.id", "d003dea9000000000000e09153675b71");), Replaced,[c54f69c003780f27e50e91b735cff60a]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.instlDay", "15485");), Replaced,[5db705248af1fb3b6f84d672040059a7]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.instlRef", "MON00032");), Replaced,[1ef662c7adce3105945fd8700103f40c]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.keyWordUrl", "http://search.softonic.com/MON00032/tb_v1?SearchSource=2&cc=&q=");), Replaced,[779d220706755ed8698ac583758f758b]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.newTabUrl", "http://search.softonic.com/MON00032/tb_v1?SearchSource=15&cc=");), Replaced,[51c373b6d1aab18501f2ad9bdf25ae52]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.prdct", "Softonic");), Replaced,[32e216135328ee486192e95fb0543fc1]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.prtnrId", "softonic");), Replaced,[64b0ff2aa0db4bebca290a3efe06c937]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.rvrtMsg", "Click Yes to keep current home page and default search settings, Click No to restore original settings");), Replaced,[1df75ccd1665d1657a793810986cc838]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.srchPrvdr", "Search the web (Softonic)");), Replaced,[15ffce5baad1ce689a59de6ae02445bb]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.tlbrId", "base");), Replaced,[2be9c762c4b7ee4850a351f74cb8af51]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.tlbrSrchUrl", "http://search.softonic.com/MON00001/tb_v1?SearchSource=1&cc=&q=");), Replaced,[44d071b83546c0763ab9d177ee164db3]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.vrsn", "1.5.21.0");), Replaced,[4fc5a98063188aac6a890e3ab94b6c94]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic.vrsni", "1.5.21.0");), Replaced,[977d4bdeadcea3935e9599af09fb01ff]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.dfltSrch", true);), Replaced,[789c87a286f596a0f5fe291fe81ced13]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.dnsErr", true);), Replaced,[c35180a93c3f88aef3003a0ef113f10f]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.hmpg", true);), Replaced,[c0545dcc4e2da294c330fc4c010357a9]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.hmpgUrl", "http://search.softonic.com/MON00032/tb_v1?SearchSource=13&cc=");), Replaced,[898b50d93e3dcc6a22d14cfc29db07f9]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.newTab", false);), Replaced,[ef25d653ee8d9c9a42b14305c0443dc3]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.smplGrp", "none");), Replaced,[fc1893967ffcf6407d76183044c012ee]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.Softonic_i.vrsnTs", "1.5.21.011:45:02");), Replaced,[888c1217a2d94fe7787be761788c07f9]
    PUP.Optional.Softonic.A, C:\Users\manuel\AppData\Roaming\Mozilla\Firefox\Profiles\9gkla0hk.default\prefs.js, Good: (), Bad: (user_pref("extensions.asktb.ff-original-keyword-url", "http://search.softonic.com/MON00032/tb_v1?SearchSource=2&cc=&q=");), Replaced,[22f2c3669fdcce68639a8fb940c408f8]

    Physical Sectors: 0
    (No malicious items detected)
    Cuando termina el informe pongo todo en cuarentena y al rato empiezan los pantallazos azules.
    Como dije creo tener una idea del problema, es algo relacionado con el WOW64, no ? Hasta ahí es donde llegan todos mis conocimientos del tema, quisiera saber cuales son los archivos puestos en cuarentena tengo que restaurar 
    Gracias
    viernes, 11 de abril de 2014 19:19

Respuestas

  • Sinceramente, el consejo que te daría es que formatearas el ordenador de nuevo. El informe que nos has puesto indica que tienes un montón de basura en el equipo. Probablemente tengas un montón de referencias cruzadas desde muchas aplicaciones, sobre todo el navegador, porque tenías un sinfin de barras y modificaciones en el registro, ventanas emergentes, cambios en el buscador por defecto, protecciones de registro para no cambiar estos parámetros...

    Sin duda te recomendaría formatear y empezar de 0.

    Lo que estás viendo del Wow, aunque coincide con el nombre del juego, no tiene que ver con él :)


    Eclat2K | www.2ksystems.com | Mantenimiento informático y Diseño web | @eclat2k
    Colobora con el foro: Si la respuesta es de utilidad para resolver tu duda/problema, usa la opción "Marcar como repuesta". Otros usuarios con dudas similares -en un futuro- lo agradecerán.

    • Marcado como respuesta Uriel Almendra domingo, 13 de abril de 2014 1:43
    sábado, 12 de abril de 2014 11:00