Error en una dll que afecta todo

Hola @WALLY

Una consulta:

Error: (05/24/2019 02:58:09 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: walter-PC) Description: Windows no encuentra el perfil local y está iniciando la sesión con un perfil temporal. Los cambios que se efectúen en este perfil se perderán cuando se cierre la sesión.

Tienes tu perfil de usuario en Windows? O es un perfil temporal como menciona el error.


1.- Desinstala con Revo Uninstaller en su Modo Avanzado:

Driver Booster, Iobit Malware Fighter, Office 2016 KMS Activator Ultimate v1.2 Final**

Manual de Revo Uninstaller.

2.- Luego sigue estos pasos:

Muy Importante >>> Realizar una copia de Seguridad de su Registro.

  • Descarga DelFix en el escritorio de Windows.
  • Clic Derecho, “Ejecutar como Administrador”.
  • En la ventana principal, marca solamente la casilla “Create Registry Backup”.
  • Clic en Run.

Al terminar se abrirá un reporte llamado DelFix.txt, guárdelo por si fuera necesario y cierre la herramienta…

3.- Desactiva Temporalmente tu antivirus.

4.- Abre un nuevo archivo Notepad y copia y pega este contenido:


Start
CloseProcesses:
CreateRestorePoint:(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.Systray.exe
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [98024 2019-04-12] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {07784A53-AAF2-44B1-BECE-AECF6302DF9C} - \OperaUpdateService -> No File <==== ATTENTION
Task: {7B4E731E-0B25-4875-BCBD-4C8F64958A47} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1983376 2019-04-05] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {B5412D51-22AF-457A-858B-DF8DA15D4E93} - System32\Tasks\{249DCE56-AFA6-4686-BD3A-B8052881FB3D} => C:\Windows\system32\pcalua.exe -a J:\Setup.exe -d J:\
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000\Software\Microsoft\Internet Explorer\Main,Start Page = 
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754\Software\Microsoft\Internet Explorer\Main,Start Page = 
SearchScopes: HKU\S-1-5-21-3193159865-2815699795-1142240979-1000 -> DefaultScope {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKU\S-1-5-21-3193159865-2815699795-1142240979-1000 -> {87A6A1F2-3D80-47D5-8295-F35B7D64E501} URL = 
SearchScopes: HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754 -> DefaultScope {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = 
SearchScopes: HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754 -> {87A6A1F2-3D80-47D5-8295-F35B7D64E501} URL = 
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_192\bin\ssv.dll [2019-05-18] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_192\bin\jp2ssv.dll [2019-05-18] (Oracle America, Inc. -> Oracle Corporation)
FF Extension: (Baidu Search Update) - C:\Users\walter\AppData\Roaming\Mozilla\Firefox\Profiles\li04kydz.default-1490757013368\features\{85983bc9-7083-4aae-b58c-3af109c22fdf}\[email protected] [2019-05-04]
FF HKU\S-1-5-21-3193159865-2815699795-1142240979-1000\...\Firefox\Extensions: [[email protected]] - F:\Temp\~sfx00001228\idmmzcc3.xpi => not found
FF HKU\S-1-5-21-3193159865-2815699795-1142240979-1000\...\SeaMonkey\Extensions: [[email protected]] - F:\Temp\~sfx00001228\idmmzcc2.xpi => not found
FF HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754\...\Firefox\Extensions: [[email protected]] - F:\Temp\~sfx00001228\idmmzcc3.xpi => not found
FF HKU\S-1-5-21-3193159865-2815699795-1142240979-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05242019145704754\...\SeaMonkey\Extensions: [[email protected]] - F:\Temp\~sfx00001228\idmmzcc2.xpi => not found
CHR DefaultSearchURL: Default -> hxxps://es.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default
CHR DefaultSearchKeyword: Default -> Yahoo
CHR DefaultSuggestURL: Default -> hxxps://es.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10
CHR HKLM\...\Chrome\Extension: [fdbpcigaolookbahgdofnimidinicfid] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - F:\Temp\~sfx00001228\IDMGCExt.crx <not found>
S3 catchme; \??\F:\Temp\catchme.sys [X]
S3 cpuz140; \??\F:\Temp\cpuz140\cpuz140_x32.sys [X]
S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x32.sys [X]
S3 DrvAgent32; \??\C:\Windows\system32\Drivers\DrvAgent32.sys [X]
S1 dsbwncfk; \??\C:\Windows\System32\drivers\dsbwnck.sys [X]
U0 Partizan; no ImagePath
2019-05-24 14:55 - 2018-01-04 00:05 - 008405015 _____ C:\Windows\hlktmp
2019-05-13 21:30 - 2019-05-13 21:32 - 000000000 ____D C:\Users\TEMP.walter-PC.002
2019-05-18 19:47 - 2018-11-04 18:39 - 000000000 ____D C:\Program Files\Avira
2019-05-18 19:45 - 2018-11-08 21:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2019-05-18 19:45 - 2018-11-04 18:39 - 000000000 ____D C:\ProgramData\Avira
2019-05-18 13:36 - 2016-07-14 02:00 - 000000000 ____D C:\Program Files\Microsoft Office
2019-04-26 20:20 - 2019-03-09 22:41 - 000000000 ____D C:\Users\TEMP.walter-PC.000
2019-03-17 16:07 - 2019-03-17 16:07 - 007895040 _____ () C:\Program Files\GUT1863.tmp
2018-07-07 00:09 - 2018-07-07 00:09 - 000000000 _____ () C:\Users\walter\AppData\Local\aGTBYvlZAHrDQlIH.exe.txt
2018-08-16 23:16 - 2018-08-16 23:16 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT10A.tmp
2019-03-17 16:16 - 2019-03-17 16:16 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT146B.tmp
2018-08-25 15:51 - 2018-08-25 15:51 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT1506.tmp
2018-08-25 15:51 - 2018-08-25 15:51 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT1583.tmp
2019-03-01 15:28 - 2019-03-01 15:28 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT1610.tmp
2019-04-16 21:55 - 2019-04-16 21:55 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT1AD0.tmp
2019-03-21 21:09 - 2019-03-21 21:09 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT1C7A.tmp
2019-04-09 22:34 - 2019-04-09 22:34 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT2AF6.tmp
2017-07-02 21:28 - 2017-07-02 21:28 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT2D59.tmp
2019-04-07 09:02 - 2019-04-07 09:02 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT3DF9.tmp
2019-05-05 10:19 - 2019-05-05 10:19 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT4692.tmp
2018-01-30 09:12 - 2018-01-30 09:12 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT59.tmp
2019-05-16 19:51 - 2019-05-16 19:51 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT5ADB.tmp
2019-04-09 22:35 - 2019-04-09 22:35 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT6A57.tmp
2019-03-27 08:45 - 2019-03-27 08:45 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT7741.tmp
2018-08-16 23:15 - 2018-08-16 23:15 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT7AF9.tmp
2019-04-07 09:03 - 2019-04-07 09:03 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT7F3E.tmp
2018-12-28 12:30 - 2018-12-28 12:30 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT933.tmp
2017-07-02 20:58 - 2017-07-02 20:58 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT9404.tmp
2017-07-02 20:58 - 2017-07-02 20:58 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT950E.tmp
2019-05-16 19:51 - 2019-05-16 19:51 - 000000000 _____ () C:\Users\walter\AppData\Local\BIT96B4.tmp
2019-05-05 10:18 - 2019-05-05 10:18 - 000000000 _____ () C:\Users\walter\AppData\Local\BITA063.tmp
2019-03-21 21:06 - 2019-03-21 21:06 - 000000000 _____ () C:\Users\walter\AppData\Local\BITA0FF.tmp
2018-12-23 17:01 - 2018-12-23 17:01 - 000000000 _____ () C:\Users\walter\AppData\Local\BITA4E6.tmp
2019-04-25 22:16 - 2019-04-25 22:16 - 000000000 _____ () C:\Users\walter\AppData\Local\BITB3C4.tmp
2019-03-21 21:07 - 2019-03-21 21:07 - 000000000 _____ () C:\Users\walter\AppData\Local\BITDAB5.tmp
2019-03-24 18:48 - 2019-03-24 18:48 - 000000000 _____ () C:\Users\walter\AppData\Local\BITDAD3.tmp
2019-03-17 16:15 - 2019-03-17 16:15 - 000000000 _____ () C:\Users\walter\AppData\Local\BITDAF3.tmp
2019-03-01 15:28 - 2019-03-01 15:28 - 000000000 _____ () C:\Users\walter\AppData\Local\BITDB7F.tmp
2019-03-21 21:09 - 2019-03-21 21:09 - 000000000 _____ () C:\Users\walter\AppData\Local\BITE0E0.tmp
2018-12-23 16:59 - 2018-12-23 16:59 - 000000000 _____ () C:\Users\walter\AppData\Local\BITF69D.tmp
2017-07-02 21:01 - 2017-07-02 21:01 - 000000000 _____ () C:\Users\walter\AppData\Local\BITFA88.tmp
2017-07-02 21:01 - 2017-07-02 21:01 - 000000000 _____ () C:\Users\walter\AppData\Local\BITFAD7.tmp
2018-12-28 12:30 - 2018-12-28 12:30 - 000000000 _____ () C:\Users\walter\AppData\Local\BITFC9.tmp
2017-07-02 21:28 - 2017-07-02 21:28 - 000000000 _____ () C:\Users\walter\AppData\Local\BITFE1C.tmp
Avira (HKLM\...\{2504137A-5E42-4340-8F34-2086B49FBD1A}) (Version: 1.2.133.21088 - Avira Operations GmbH & Co. KG) Hidden
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers3: [DLLRegSvr] -> {8AB81E72-CB2F-11D3-8D3B-AC2F34F1FA3C} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
AlternateDataStreams: C:\ProgramData\TEMP:EC2E1DEC [456]
FirewallRules: [{62F3A5E0-7654-40E5-B457-EA9D23D809E7}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\DriverBooster.exe No File
FirewallRules: [{EE6C2C26-2810-4311-8B7D-763460A85F26}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\DriverBooster.exe No File
FirewallRules: [{12DAB7A6-7D4E-4EBA-8F8B-E03F12B43DFA}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\DBDownloader.exe No File
FirewallRules: [{DF93A177-ABEF-43A3-9468-513375022B6A}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\DBDownloader.exe No File
FirewallRules: [{6E292B05-EC9A-4C80-A5EA-9247B049D6A8}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\AutoUpdate.exe No File
FirewallRules: [{10E06301-34CC-4819-BE89-1755D2A4E6C9}] => (Allow) C:\Program Files\IObit\Driver Booster\5.3.0\AutoUpdate.exe No File
CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
RemoveProxy:
EmptyTemp:
Hosts:
END
  • Lo guardas bajo el nombre de fixlist.txt en el escritorio <<< Esto es muy importante.

Nota: Es necesario que el ejecutable Frst.exe y fixlist.txt se encuentren en la misma ubicación (escritorio) o si no la herramienta no trabajara.

  • Ejecutas Frst.exe.
  • Presionas el botón Fix y aguardas a que termine.
  • La Herramienta guardara el reporte en tu escritorio (Fixlog.txt).
  • Lo pegas en tu próxima respuesta.

Luego de reiniciar, nos comentas si el problema persiste.

Salu2.