• Registrarse
  • Iniciar sesión


  • Página 2 de 4 PrimeroPrimero 1234 ÚltimoÚltimo
    Resultados 11 al 20 de 32

    jkdowloader y "SweetPcfix", "Search the web"

    Hola disculpa por no responder enseguida te cuento la situación, ejecute windows update actualice todo y ahora me sale que windows es una copia y ahora el pc esta muy lento. prácticamente no puedo hacer ...

    1. #11
      Usuario Avatar de Camilo313
      Registrado
      ago 2012
      Ubicación
      Puerto Montt
      Mensajes
      16

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola disculpa por no responder enseguida
      te cuento la situación, ejecute windows update actualice todo
      y ahora me sale que windows es una copia y ahora el pc esta muy lento. prácticamente no puedo hacer nada
      en cuanto a los siguientes pasos los seguí según me dijiste
      en este momento estoy pasando el avast en modo seguro
      ya que si lo paso en modo normal se pega mucho
      ah! otra cosa cuando pase el OTM y le di a clean up y termino de hacer su operación
      salio una ventana que decía "remove... y algo mas, no recuerdo. la cosa es que le di a "yes"
      y se reinicio, cuando volvió a funcionar el pc ya no estaba el OTM en el escritorio. mi duda es que si eso esta bien? y por cierto que los 2 iconos ahun siguen en el escritorio, hise lo que me dijiste de posicionarme sobre ellos y en propiedades sacar el link
      los copie a un block de notas y ahora que hago con ellos?
      acabo de pasar el avast en un escaneo completo y no me arroja virus ni nada por el estilo
      espero alguna respuesta


      Saludos y gracias de ante mano!
      Última edición por Camilo313 fecha: 06/01/13 a las 15:32:16

    2. #12
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola!

      Bien, vamos a hacer lo siguiente:

      Mándame esos archivos txt donde salen las direcciones.

      Ejecuta Centro de soluciones Microsoft Fix it: solución de problemas de software por el tema del reconocimiento de windows. A ver si ahí te arregla algo en ese sentido. Si no te funciona dirígete a esta dirección y ejecuta el "Solucionador de Problemas de esta página" => Solucionar problemas de instalación de Service Pack 1 (SP1) de Windows 7 y Windows Server 2008 R2

      De momento NI SE TE OCURRA USAR NINGÚN PROGRAMA DE LIMPIEZA TIPO CCLEANER ETC...PODRÍAS PERDER TODOS LOS ACCESOS DIRECTOS DEL ESCRITORIO

      Reinicia en Modo Seguro con funciones de Red. Realiza un SCAN COMPLETO con el Panda Active Scan 2.0 => Panda Activescan | Antivirus online Gratis contra virus | Desinfectar Virus Gratis - Panda Security. Para poder hacerlo, necesitará instalarte unas carpetas ligeras en tu equipo, vas diciendo que sí hasta que llegues a la pantalla de Scan. Hazlo de preferencia con el IE si lo haces con el Mozilla tendrás que seguir las instrucciones de este link => IE Tab - Abrir Internet Explorer dentro de Firefox y Chrome Para cualquier duda referente a la ejecución del programa te dejo su Manual de Panda ActiveScan 2.0. Al finalizar el Scan, no olvides GUARDAR REPORTE.

      Vuelve a ejecutarme el AT. Seguramente habrá que pasar el OTM de nuevo y borrar alguna clave de registro, pero primero hazme lo que te pido, quiero ver esas direcciones. Y a ver si se soluciona el tema de la reactivación del Windows, sé que había una clave para hacerlo, si la encuentro os la paso enseguida (aisss mira que no guardarla).

      Guarda reporte y me lo mandas todo.
      Última edición por Gemsa_03 fecha: 07/01/13 a las 07:44:15 Razón: correción

    3. #13
      Usuario Avatar de Camilo313
      Registrado
      ago 2012
      Ubicación
      Puerto Montt
      Mensajes
      16

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Gracias por responder tan luego.
      tengo una duda ahmm... a que parte me debo dirigir en el paso 2?
      y otra seria en el paso 2 y 5 debo hacerlo en modo "normal" o lo puedo hacer en modo seguro?
      lo que pasa es que como anda un poco (mucho) mas lento el pc ahora me demorare mucho mas
      pero si dices que debo hacerlo en modo "normal" lo hago

      Saludos!

      saludos!

    4. #14
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola a ver a lo mejor he sido un poco ambiguo en el paso 2, intenta el 1º que te lo solventa acude al segundo paso. Que no, en el próximo post me lo dices y seguiré en ello no te preocupes.

      paso del AT y del Panda, me los puedes (es más en tu caso es recomendable ) hacer (el AT me lo puedes hacer en Modo Seguro y el Panda en modo seguro con funciones de red).

      Espero Informes y comentarios.

      Un saludo cordial!

    5. #15
      Usuario Avatar de Camilo313
      Registrado
      ago 2012
      Ubicación
      Puerto Montt
      Mensajes
      16

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola aquí te dejo los reportes
      el paso 2 no lo pude hacer. aún sigo con los problemas de windows que es una copia y todo eso
      en fin te dejo los 2 reportes + los 2 links de los iconos

      --------------------------------------------------------------------------
      SweetPCFix
      http://lp.sweetpcfix.sweetpacks.com/?lpver=8-9 (este es link es el mismo de arriba. en la ultima parte =89 le puse el - para que no quede como enlace directo.)

      http://home.sweetim.com/?crg=3.1010006&src=96&st=16

      -----------------------------------------------------------------------------
      Broken Link. FILE: File not found:YTBB.EXE to be deleted.

      Broken Link. REGKEY: HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38694A7B-BF30-4527-A99F-FB4E00665F64}. Key to be deleted.

      Broken Link. FILE: File not found:SOFTONIC.COM4TOOLBARHELPER.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{77A1DFD9-13BF-42E1-999D-9908DF563F47}. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\RDVGKMD.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\VGPU. Key to be deleted.

      Broken Link. FILE: File not found:C:\PROGRAM FILES\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGHELPERAPP.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}. Key to be deleted.

      Broken Link. FILE: File not found:DTUSER.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F773DEE-5BF9-4C0D-A4D1-BC453EE6054F}. Key to be deleted.

      Unknown. FILE: C:\WINDOWS\UNINS000.EXE to be deleted.

      Unknown. REGKEY: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\AVAST_2050_ZENIX [2012-06-29]_IS1. Key to be deleted.

      Unknown. REGKEY: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\AVAST_2050_ZENIX [2012-06-29]_IS1. Key to be deleted.

      Broken Link. FILE: File not found:NGM.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}. Key to be deleted.

      Broken Link. FILE: File not found:CHROME_LAUNCHER.EXE to be deleted.

      Broken Link. REGKEY: HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A}. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\NMRKUSBA.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\NMRKUSBA. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\NMRKUSBU.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\NMRKUSBU. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBHUB.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\tsusbhub. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\SYNTH3DVSC.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\Synth3dVsc. Key to be deleted.

      Suspicious Policy. POLICY: HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED[SHOWSUPERHIDDEN] to be changed to: 1

      Suspicious Policy. POLICY: HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED[HIDEFILEEXT] to be changed to: 0

      ------------------------------------------------------------------------------------------------

      ######################## AT-Destroyer [2.1] By Infospyware.
      Hora/Día/Mes/Año: 20:40:23 \\\ 07/01/2013
      AT-Destroyer 2.1 By Infospyware ---> InfoSpyware
      Última actualización: 30/11/2012
      Opción escogida: 2 :Buscar y Destruir
      Versión Internet Explorer:9.0.8112.16421
      Privilegios: Betty - Administrador
      Modo Actual: Modo Seguro.
      Nombre del pc: BETTY-PC
      Información del sistema operativo:X86-WIN_7-Service Pack 1
      nombre del usuario:Betty
      Lenguaje del sistema: Español



      >>>>>>> Servicios <<<<<<<



      >>>>>> Carpetas <<<<<<



      >>>>>> Archivos <<<<<<



      >>>>>> Registro <<<<<<



      >>>>>> Heurística <<<<<<



      >>>>>> Internet Explorer <<<<<<

      Start Page==www.google.com
      Local Page==C:\Windows\System32\blank.htm
      Search Page==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_search_url==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_Page_URL==http://go.microsoft.com/fwlink/?LinkId=69157


      ''HKCU\Software\Microsoft\Internet Explorer\Main''
      Start Page==www.google.com
      Local Page==C:\Windows\system32\blank.htm
      Search Page==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_search_url==
      Default_Page_URL==


      HKEY_USERS\S-1-5-21-773110600-135081245-23203485-1000\Software\Microsoft\Internet Explorer\Main''
      Start Page==www.google.com
      Local Page==C:\Windows\system32\blank.htm
      Search Page==http://go.microsoft.com/fwlink/?LinkId=54896
      Default_search_url==
      Default_Page_URL==


      >>>>>> Plugins Firefox <<<<<<

      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.10.2
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.10.2
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0
      HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3

      >>>>>> Google Chrome <<<<<<

      "homepage": "http://www.google.com/",
      "homepage_changed": true,
      "homepage_is_newtabpage": false,


      >>>>>> Extensiones Google Chrome <<<<<<

      C:\Users\Betty\AppData\Local\Google\Chrome\User Data\Default\Extensions\1
      C:\Users\Betty\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda

      ======== Listado ===========

      [29/04/2010 15:17] [31/03/2010 11:14] [DI] C:\Users\Betty\AppData\Roaming\Ahead
      [17/04/2011 23:00] [17/04/2011 22:32] [DI] C:\Users\Betty\AppData\Roaming\Audacity
      [17/08/2011 12:59] [31/03/2010 21:38] [DI] C:\Users\Betty\AppData\Roaming\CyberLink
      [04/12/2012 17:20] [27/11/2012 11:41] [DI] C:\Users\Betty\AppData\Roaming\DVDVideoSoft
      [04/01/2013 15:06] [04/01/2013 15:06] [DI] C:\Users\Betty\AppData\Roaming\GlarySoft
      [01/04/2010 23:09] [01/04/2010 23:08] [DI] C:\Users\Betty\AppData\Roaming\Google
      [05/10/2012 16:06] [12/05/2011 23:42] [DI] C:\Users\Betty\AppData\Roaming\********
      [19/07/2011 21:56] [19/07/2011 21:56] [DI] C:\Users\Betty\AppData\Roaming\InstallShield
      [19/06/2012 13:01] [30/12/2011 19:27] [DI] C:\Users\Betty\AppData\Roaming\IObit
      [12/05/2011 23:43] [12/05/2011 23:43] [DI] C:\Users\Betty\AppData\Roaming\Juce VST Host
      [21/03/2012 21:24] [21/03/2012 21:24] [DI] C:\Users\Betty\AppData\Roaming\Kuma Games
      [14/07/2010 18:17] [31/03/2010 17:23] [DI] C:\Users\Betty\AppData\Roaming\Macromedia
      [02/12/2012 13:52] [02/12/2012 13:52] [DI] C:\Users\Betty\AppData\Roaming\Malwarebytes
      [ 14/07/2009 5:07] [ 31/03/2010 10:47] [DI] C:\Users\Betty\AppData\Roaming\Media Center Programs
      [04/12/2012 14:39] [31/03/2010 10:47] [SDI] C:\Users\Betty\AppData\Roaming\Microsoft
      [17/04/2011 21:13] [17/04/2011 21:13] [DI] C:\Users\Betty\AppData\Roaming\ML
      C:\Users\Betty\AppData\Roaming\pcouffin.cat [AI] 7,70 KB ( )
      C:\Users\Betty\AppData\Roaming\pcouffin.inf [AI] 1,11 KB ( )
      C:\Users\Betty\AppData\Roaming\pcouffin.log [AI] 34 bytes ( )
      C:\Users\Betty\AppData\Roaming\pcouffin.sys [AI] 46,2 KB ( )
      [ 12/06/2010 4:06] [ 12/06/2010 4:06] [DI] C:\Users\Betty\AppData\Roaming\PeerNetworking
      [05/06/2011 20:18] [05/06/2011 10:42] [D] C:\Users\Betty\AppData\Roaming\Real
      [06/01/2013 13:53] [10/09/2012 23:37] [DI] C:\Users\Betty\AppData\Roaming\Skype
      [12/05/2011 23:07] [12/05/2011 23:07] [DI] C:\Users\Betty\AppData\Roaming\Softland
      [11/04/2011 23:09] [17/04/2010 14:57] [DI] C:\Users\Betty\AppData\Roaming\Sony
      [13/04/2010 10:50] [13/04/2010 10:50] [DI] C:\Users\Betty\AppData\Roaming\Sony Corporation
      [06/03/2012 15:17] [06/03/2012 15:17] [DI] C:\Users\Betty\AppData\Roaming\Sony Creative Software
      [17/04/2010 14:59] [17/04/2010 14:57] [DI] C:\Users\Betty\AppData\Roaming\Sony Setup
      [ 12/08/2010 8:04] [ 28/05/2010 18:11] [DI] C:\Users\Betty\AppData\Roaming\Template
      C:\Users\Betty\AppData\Roaming\UserTile.png [AI] 32,3 KB ( )
      [12/06/2010 11:07] [12/06/2010 9:44] [DI] C:\Users\Betty\AppData\Roaming\Vso
      [08/11/2012 11:45] [31/03/2010 11:42] [DI] C:\Users\Betty\AppData\Roaming\WinRAR
      C:\Users\Betty\AppData\Roaming\wklnhst.dat [AI] 1,21 KB ( )
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\Program Files\Archivos comunes
      [04/01/2013 0:54] [04/01/2013 0:54] [DI] C:\Program Files\AVAST Software
      [19/12/2011 0:25] [19/12/2011 0:25] [DI] C:\Program Files\Avira
      [18/12/2011 22:57] [02/04/2010 0:01] [DI] C:\Program Files\CCleaner
      [04/12/2012 17:20] [13/07/2009 22:37] [DI] C:\Program Files\Common Files
      [31/03/2010 11:09] [31/03/2010 11:00] [DI] C:\Program Files\CyberLink
      C:\Program Files\desktop.ini [HSA] 174 bytes( 0)
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\DVD Maker
      [12/06/2010 11:07] [12/06/2010 11:07] [DI] C:\Program Files\DVDFab 7
      [31/03/2010 11:47] [31/03/2010 11:47] [DI] C:\Program Files\Elaborate Bytes
      [03/02/2012 17:34] [29/08/2010 10:31] [DI] C:\Program Files\EPSON
      [03/01/2013 10:16] [03/01/2013 10:16] [DI] C:\Program Files\ESET
      [05/06/2011 20:18] [05/06/2011 10:19] [D] C:\Program Files\FileServe Manager
      [04/01/2013 13:35] [04/01/2013 13:35] [DI] C:\Program Files\Glary Utilities
      [15/02/2012 19:24] [01/04/2010 23:07] [DI] C:\Program Files\Google
      [19/08/2012 19:07] [31/03/2010 11:00] [HD] C:\Program Files\InstallShield Installation Information
      [06/01/2013 2:03] [13/07/2009 22:37] [DI] C:\Program Files\Internet Explorer
      [04/01/2013 13:07] [30/12/2011 19:27] [DI] C:\Program Files\IObit
      [06/01/2013 11:38] [17/06/2010 11:51] [DI] C:\Program Files\Java
      [14/07/2009 5:08] [14/07/2009 0:52] [DI] C:\Program Files\Microsoft Games
      [31/03/2010 11:24] [31/03/2010 11:19] [DI] C:\Program Files\Microsoft Office
      [06/01/2013 2:06] [14/04/2010 10:04] [DI] C:\Program Files\Microsoft Silverlight
      [08/12/2010 9:52] [08/12/2010 4:56] [DI] C:\Program Files\Microsoft SQL Server
      [31/03/2010 11:24] [31/03/2010 11:24] [DI] C:\Program Files\Microsoft Visual Studio
      [03/02/2012 17:34] [31/03/2010 11:20] [DI] C:\Program Files\Microsoft Visual Studio 8
      [06/01/2013 1:21] [31/03/2010 11:24] [DI] C:\Program Files\Microsoft Works
      [08/12/2010 9:52] [31/03/2010 11:23] [DI] C:\Program Files\Microsoft.NET
      [31/03/2010 11:24] [14/07/2009 0:52] [DI] C:\Program Files\MSBuild
      [31/03/2010 11:12] [31/03/2010 11:12] [DI] C:\Program Files\Nero
      [10/07/2012 16:39] [10/07/2012 16:39] [DI] C:\Program Files\Oracle
      [21/04/2011 23:53] [21/04/2011 23:53] [DI] C:\Program Files\Outsim
      [07/01/2013 20:15] [07/01/2013 20:15] [DI] C:\Program Files\Panda Security
      [28/12/2011 21:41] [08/04/2010 22:57] [DI] C:\Program Files\Pando Networks
      [28/11/2011 17:42] [26/09/2011 14:37] [DI] C:\Program Files\QuickTime
      [05/06/2011 20:18] [05/06/2011 10:42] [D] C:\Program Files\Real
      [23/12/2012 13:03] [23/12/2012 13:03] [DI] C:\Program Files\Red Sky
      [14/07/2009 0:52] [14/07/2009 0:52] [DI] C:\Program Files\Reference Assemblies
      [02/12/2012 2:35] [10/09/2012 23:36] [RDI] C:\Program Files\Skype
      [05/05/2012 17:44] [13/04/2010 6:39] [DI] C:\Program Files\Sony
      [05/05/2012 17:44] [05/05/2012 16:21] [DI] C:\Program Files\Sony Media Go Install
      [11/04/2011 23:01] [17/04/2010 14:57] [DI] C:\Program Files\Sony Setup
      [11/01/2012 20:38] [11/01/2012 20:38] [DI] C:\Program Files\SystemRequirementsLab
      [14/07/2009 0:53] [14/07/2009 0:53] [HDI] C:\Program Files\Uninstall Information
      [12/12/2012 10:58] [18/01/2012 21:55] [DI] C:\Program Files\Video Web Camera
      [04/01/2013 12:59] [04/01/2013 12:59] [DI] C:\Program Files\VS Revo Group
      [04/12/2012 17:19] [29/11/2012 13:31] [DI] C:\Program Files\VTR
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\Windows Defender
      [06/01/2013 2:03] [14/07/2009 5:08] [DI] C:\Program Files\Windows Journal
      [21/06/2012 17:19] [31/03/2010 17:15] [DI] C:\Program Files\Windows Live
      [06/01/2013 2:03] [13/07/2009 22:37] [DI] C:\Program Files\Windows Mail
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\Windows Media Player
      [31/03/2010 10:46] [13/07/2009 22:37] [DI] C:\Program Files\Windows NT
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\Windows Photo Viewer
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\Windows Portable Devices
      [06/01/2013 2:03] [14/07/2009 0:52] [DI] C:\Program Files\Windows Sidebar
      [08/11/2012 11:45] [31/03/2010 11:30] [DI] C:\Program Files\WinRAR
      [06/01/2013 12:16] [31/03/2010 17:27] [DI] C:\ProgramData\Adobe
      [26/09/2011 21:24] [17/04/2010 15:03] [DI] C:\ProgramData\Apple
      [28/11/2011 17:42] [17/04/2010 15:04] [DI] C:\ProgramData\Apple Computer
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Application Data
      [04/01/2013 0:54] [16/08/2012 18:09] [DI] C:\ProgramData\AVAST Software
      [11/11/2011 10:47] [11/11/2011 10:47] [DI] C:\ProgramData\boost_interprocess
      [17/08/2011 12:59] [31/03/2010 21:38] [DI] C:\ProgramData\CyberLink
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Datos de programa
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Desktop
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Documentos
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Documents
      [05/10/2012 13:36] [17/04/2010 11:01] [DI] C:\ProgramData\eMule
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Escritorio
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Favorites
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Favoritos
      [05/06/2011 10:19] [05/06/2011 10:19] [D] C:\ProgramData\FileServe Limited
      [05/06/2011 20:18] [07/05/2010 20:18] [DI] C:\ProgramData\Google
      [21/03/2011 10:36] [21/03/2011 10:36] [DI] C:\ProgramData\Installations
      [30/12/2011 19:28] [19/12/2011 22:19] [D] C:\ProgramData\IObit
      [02/12/2012 13:51] [02/12/2012 13:51] [DI] C:\ProgramData\Malwarebytes
      [26/04/2012 0:41] [26/04/2012 0:41] [DI] C:\ProgramData\McAfee
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Menú Inicio
      [21/06/2012 17:18] [13/07/2009 22:37] [SDI] C:\ProgramData\Microsoft
      [06/01/2013 1:24] [31/03/2010 11:19] [DI] C:\ProgramData\Microsoft Help
      [31/03/2010 11:12] [31/03/2010 11:12] [DI] C:\ProgramData\Nero
      [22/08/2012 17:24] [22/08/2012 17:24] [DI] C:\ProgramData\Nexon
      [03/09/2010 14:38] [22/06/2010 11:50] [DI] C:\ProgramData\NexonEU
      [31/03/2010 10:46] [31/03/2010 10:46] [HSDLI] C:\ProgramData\Plantillas
      [28/12/2011 21:41] [08/04/2010 22:59] [DI] C:\ProgramData\PMB Files
      [05/06/2011 10:43] [05/06/2011 10:42] [D] C:\ProgramData\Real
      [12/05/2011 22:46] [12/05/2011 22:46] [DI] C:\ProgramData\RegUse
      [11/04/2011 22:05] [11/04/2011 22:05] [DI] C:\ProgramData\Samsung
      [02/12/2012 2:36] [10/09/2012 23:36] [DI] C:\ProgramData\Skype
      [05/05/2012 16:38] [05/05/2012 16:38] [DI] C:\ProgramData\Sony Corporation
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Start Menu
      [17/06/2010 11:52] [17/06/2010 11:52] [DI] C:\ProgramData\Sun
      [15/11/2011 13:30] [15/11/2011 13:30] [DI] C:\ProgramData\TEMP
      [14/07/2009 0:53] [14/07/2009 0:53] [HSDLI] C:\ProgramData\Templates
      [26/09/2011 14:39] [26/09/2011 14:38] [DI] C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

      ==================== EOF ==================
      Última edición por Camilo313 fecha: 07/01/13 a las 20:05:05

    6. #16
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola

      Broken Link. FILE: File not found:YTBB.EXE to be deleted.

      Broken Link. REGKEY: HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38694A7B-BF30-4527-A99F-FB4E00665F64}. Key to be deleted.

      Broken Link. FILE: File not found:SOFTONIC.COM4TOOLBARHELPER.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{77A1DFD9-13BF-42E1-999D-9908DF563F47}. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\RDVGKMD.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\VGPU. Key to be deleted.

      Broken Link. FILE: File not found:C:\PROGRAM FILES\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGHELPERAPP.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}. Key to be deleted.

      Broken Link. FILE: File not found:DTUSER.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F773DEE-5BF9-4C0D-A4D1-BC453EE6054F}. Key to be deleted.

      Unknown. FILE: C:\WINDOWS\UNINS000.EXE to be deleted.

      Unknown. REGKEY: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\AVAST_2050_ZENIX [2012-06-29]_IS1. Key to be deleted.

      Unknown. REGKEY: HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\AVAST_2050_ZENIX [2012-06-29]_IS1. Key to be deleted.

      Broken Link. FILE: File not found:NGM.EXE to be deleted.

      Broken Link. REGKEY: HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}. Key to be deleted.

      Broken Link. FILE: File not found:CHROME_LAUNCHER.EXE to be deleted.

      Broken Link. REGKEY: HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A900DF-9611-4446-86BD-4B1D47E7DB2A}. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\NMRKUSBA.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\NMRKUSBA. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\NMRKUSBU.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\NMRKUSBU. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBHUB.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\tsusbhub. Key to be deleted.

      Broken Link. FILE: File not found:C:\WINDOWS\SYSTEM32\DRIVERS\SYNTH3DVSC.SYS to be deleted.

      Broken Link. REGKEY: HKLM\SYSTEM\CurrentControlSet\Services\Synth3dVsc. Key to be deleted.

      Suspicious Policy. POLICY: HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED[SHOWSUPERHIDDEN] to be changed to: 1

      Suspicious Policy. POLICY: HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\ADVANCED[HIDEFILEEXT] to be changed to: 0
      De dónde me sacas este reporte porque no es del Panda..

      saludos.

    7. #17
      Usuario Avatar de Camilo313
      Registrado
      ago 2012
      Ubicación
      Puerto Montt
      Mensajes
      16

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Ese es del panda. lo hice mal? fui a la pagina como dijiste y me baje el panda cloud cleaner
      de ese es el reporte. y lo hice con google chrome

      saludos
      Última edición por Camilo313 fecha: 07/01/13 a las 20:14:38

    8. #18
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola! no quería que te bajaras el Panda cloud! si no que realizaras el >Panda Active online!

      Bueno, me imagino por qué te ha pasado eso te daría problemas con el navegador.

      Ejecuta este desinstalador

      Léete bien las instrucciones prueba con el Mozilla Firefox para hacer el análisis, me fío más.
      ES EL PUNTO 4

      Un saludo.
      Última edición por Gemsa_03 fecha: 07/01/13 a las 22:02:47 Razón: correción

    9. #19
      Usuario Avatar de Camilo313
      Registrado
      ago 2012
      Ubicación
      Puerto Montt
      Mensajes
      16

      Re: jkdowloader y "SweetPcfix", "Search the web"

      **********************************************************************************************************************************
      ANALYSIS: 2013-01-13 15:50:46
      PROTECTIONS: 1
      MALWARE: 10
      SUSPECTS: 0
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description Version Active Updated
      ;===================================================================================================================================================================================
      avast! Internet Security Yes Yes
      ;===================================================================================================================================================================================
      MALWARE
      Id Description Type Active Severity Disinfectable Disinfected Location
      ;===================================================================================================================================================================================
      00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][2].txt
      00167704 Cookie/Xiti TrackingCookie No 0 Yes No c:\windows.old\users\emachines\appdata\roaming\microsoft\windows\cookies\low\[email protected][1].txt
      00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][3].txt
      00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][2].txt
      00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\windows.old\users\emachines\appdata\roaming\microsoft\windows\cookies\low\[email protected][1].txt
      00168061 Cookie/Apmebf TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00170554 Cookie/Overture TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00199984 Cookie/Searchportal TrackingCookie No 0 Yes No c:\windows\system32\config\systemprofile\appdata\roaming\microsoft\windows\cookies\[email protected][1].txt
      00286736 Cookie/Cgi-bin TrackingCookie No 0 Yes No c:\windows.old\users\emachines\appdata\roaming\microsoft\windows\cookies\low\[email protected][1].txt
      10119582 Generic Trojan Virus/Trojan No 0 No No c:\users\betty\downloads\removewat2.2.4.rar[remove wat 2.2.4.exe]
      ;===================================================================================================================================================================================
      SUSPECTS
      Sent Location
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      VULNERABILITIES
      Id Severity Description
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================

    10. #20
      Ex-Colaborador Avatar de Gemsa_03
      Registrado
      feb 2012
      Ubicación
      Málaga-España
      Mensajes
      6.615

      Re: jkdowloader y "SweetPcfix", "Search the web"

      Hola!

      Pregunta obligada, cómo va. Has notado algún cambio positivo?

      Espero tus respuestas.